
Security News
arXiv Is Rate Limiting Authors Following a Flood of AI Slop Submissions
arXiv now limits authors to two submissions a month as AI slop overwhelms moderators, delays good papers, and sparks debate over applying the limit to everyone.
@polyxd/ds-bootstrap
Advanced tools
Bootstrap 5 as a Polyxd design-system pack: DTCG 2025.10 token files that satisfy the semantic token contract in light and dark.
npm run check -w @polyxd/ds-bootstrap # contract check, both modes
npm run generate -w @polyxd/ds-bootstrap # regenerate tokens/*.json
bootstrap 5.3.8 (MIT), the :root and [data-bs-theme=dark] custom-property blocks from dist/css/bootstrap.css, vendored as scripts/sources/bootstrap/{light,dark}.json. Bootstrap's dark theme overrides a subset of :root, so the dark file is the merge, as a browser resolves it. Variable names are kept (bs.body-bg, bs.border-radius).
surface.raised and surface.default are the same colour and the border does the work.h1 2.5rem, .small 0.875em, and the 0.15s/0.2s/0.3s transitions.Bootstrap's bright hues can't carry a 3:1 accent in light mode — cyan #0dcaf0 is 1.35:1 on white, yellow #ffc107 is 1.23:1, teal 2.13:1, orange 2.57:1. Bootstrap solves this itself with *-text-emphasis variables, which are darkened in light mode and lightened in dark, so every status emphasis and chart colour uses those:
| Token | Bootstrap's raw hue | Measured | Used instead |
|---|---|---|---|
color.status.info.emphasis | --bs-info | 1.35:1 | --bs-info-text-emphasis |
color.status.warning.emphasis | --bs-warning | 1.23:1 | --bs-warning-text-emphasis |
color.status.success.emphasis, danger.emphasis | --bs-success, --bs-danger | pass in light, fail in dark | their -text-emphasis steps, which are mode-aware |
color.data.categorical.1–6 | --bs-blue, teal, indigo, orange, pink, cyan | 1.96–2.57:1 | the six *-text-emphasis hues |
color.border.strong | --bs-border-color | 1.3:1 | --bs-secondary-color |
opacity.state.disabled | .disabled is 0.65 | above the contract's 0.6 cap | 0.6 |
logo.svg (colour) and logo-white.svg (white, for dark grounds) are Bootstrap's own files from its brand page, byte for byte as in the v5.3.8 repository. The brand page asks that the mark be used unmodified, in colour, black or white, when referring to Bootstrap, and that the name be written Bootstrap.
Bootstrap and its logo are trademarks of the Bootstrap team, used here to identify the design system this pack is modelled on. Polyxd is not affiliated with the Bootstrap team.
FAQs
Bootstrap 5 design-system pack for Polyxd (DTCG 2025.10 tokens)
The npm package @polyxd/ds-bootstrap receives a total of 40 weekly downloads. As such, @polyxd/ds-bootstrap popularity was classified as not popular.
We found that @polyxd/ds-bootstrap demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Security News
arXiv now limits authors to two submissions a month as AI slop overwhelms moderators, delays good papers, and sparks debate over applying the limit to everyone.

Research
/Security News
A new GhostAction wave hits hundreds of GitHub repos, expanding CI/CD secret theft to cloud and AI credentials in source code and git history.

Research
/Security News
Tensorlake npm SDK version 0.5.144 was compromised in a ChainDrop / Shai-Hulud attack, delivering credential-stealing malware.